File tree Expand file tree Collapse file tree 10 files changed +22
-22
lines changed
Expand file tree Collapse file tree 10 files changed +22
-22
lines changed Original file line number Diff line number Diff line change @@ -26,15 +26,15 @@ jobs:
2626
2727 steps :
2828 - name : Checkout
29- uses : actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1 .1
29+ uses : actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0 .1
3030
3131 - name : Initialize CodeQL
32- uses : github/codeql-action/init@662472033e021d55d94146f66f6058822b0b39fd # v3.28.1
32+ uses : github/codeql-action/init@5d4e8d1aca955e8d8589aabd499c5cae939e33c7 # v3.28.1
3333 with :
3434 languages : ${{ matrix.language }}
3535 build-mode : ${{ matrix.build-mode }}
3636
3737 - name : Perform CodeQL Analysis
38- uses : github/codeql-action/analyze@662472033e021d55d94146f66f6058822b0b39fd # v3.28.1
38+ uses : github/codeql-action/analyze@5d4e8d1aca955e8d8589aabd499c5cae939e33c7 # v3.28.1
3939 with :
4040 category : " /language:${{ matrix.language }}"
Original file line number Diff line number Diff line change 44 check :
55 runs-on : ubuntu-latest
66 steps :
7- - uses : actions/checkout@v4
7+ - uses : actions/checkout@v6
88 - name : Enforce Guix primary / Nix fallback
99 run : |
1010 # Check for package manager files
Original file line number Diff line number Diff line change 44 check :
55 runs-on : ubuntu-latest
66 steps :
7- - uses : actions/checkout@v4
7+ - uses : actions/checkout@v6
88 - name : Enforce language policies
99 run : |
1010 # Block new Python files (except SaltStack)
Original file line number Diff line number Diff line change @@ -19,12 +19,12 @@ jobs:
1919
2020 steps :
2121 - name : Checkout
22- uses : actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1 .1
22+ uses : actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0 .1
2323 with :
2424 fetch-depth : 0
2525
2626 - name : Setup SSH
27- uses : webfactory/ssh-agent@dc588b651fe13675774614f8e6a936a468676387 # v0.9.0
27+ uses : webfactory/ssh-agent@a6f90b1f127823b31d4d4a8d96047790581349bd # v0.9.1
2828 with :
2929 ssh-private-key : ${{ secrets.GITLAB_SSH_KEY }}
3030
@@ -49,12 +49,12 @@ jobs:
4949
5050 steps :
5151 - name : Checkout
52- uses : actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1 .1
52+ uses : actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0 .1
5353 with :
5454 fetch-depth : 0
5555
5656 - name : Setup SSH
57- uses : webfactory/ssh-agent@dc588b651fe13675774614f8e6a936a468676387 # v0.9.0
57+ uses : webfactory/ssh-agent@a6f90b1f127823b31d4d4a8d96047790581349bd # v0.9.1
5858 with :
5959 ssh-private-key : ${{ secrets.BITBUCKET_SSH_KEY }}
6060
Original file line number Diff line number Diff line change 55 lint :
66 runs-on : ubuntu-latest
77 steps :
8- - uses : actions/checkout@v4
8+ - uses : actions/checkout@v6
99
1010 - name : Check file permissions
1111 run : |
3535 docs :
3636 runs-on : ubuntu-latest
3737 steps :
38- - uses : actions/checkout@v4
38+ - uses : actions/checkout@v6
3939 - name : Check documentation
4040 run : |
4141 MISSING=""
Original file line number Diff line number Diff line change 55 build :
66 runs-on : ubuntu-latest
77 steps :
8- - uses : actions/checkout@v4
9- - uses : denoland/setup-deno@v1
8+ - uses : actions/checkout@v6
9+ - uses : denoland/setup-deno@v2
1010 with :
1111 deno-version : v1.x
1212
3232 security :
3333 runs-on : ubuntu-latest
3434 steps :
35- - uses : actions/checkout@v4
36- - uses : denoland/setup-deno@v1
35+ - uses : actions/checkout@v6
36+ - uses : denoland/setup-deno@v2
3737 - name : Check permissions
3838 run : |
3939 # Audit for dangerous permissions
Original file line number Diff line number Diff line change @@ -14,17 +14,17 @@ jobs:
1414 security-events : write
1515 id-token : write
1616 steps :
17- - uses : actions/checkout@v4
17+ - uses : actions/checkout@v6
1818 with :
1919 persist-credentials : false
2020
2121 - name : Run Scorecard
22- uses : ossf/scorecard-action@v2.3.1
22+ uses : ossf/scorecard-action@v2.4.3
2323 with :
2424 results_file : results.sarif
2525 results_format : sarif
2626
2727 - name : Upload results
28- uses : github/codeql-action/upload-sarif@v3
28+ uses : github/codeql-action/upload-sarif@v4
2929 with :
3030 sarif_file : results.sarif
Original file line number Diff line number Diff line change 44 check :
55 runs-on : ubuntu-latest
66 steps :
7- - uses : actions/checkout@v4
7+ - uses : actions/checkout@v6
88 - name : Security checks
99 run : |
1010 FAILED=false
Original file line number Diff line number Diff line change 1717 validate :
1818 runs-on : ubuntu-latest
1919 steps :
20- - uses : actions/checkout@v4
20+ - uses : actions/checkout@v6
2121
2222 - name : RFC 9116 security.txt validation
2323 run : |
Original file line number Diff line number Diff line change 2222
2323 steps :
2424 - name : Checkout
25- uses : actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1 .1
25+ uses : actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v6.0 .1
2626
2727 - name : Check SPDX Headers
2828 run : |
7272 echo "$unpinned"
7373 echo ""
7474 echo "Replace version tags with SHA pins, e.g.:"
75- echo " uses: actions/checkout@b4ffde65f46336ab88eb53be808477a3936bae11 # v4.1.1"
75+ echo " uses: actions/checkout@8e8c483db84b4bee98b60c0593521ed34d9990e8 # v4.1.1"
7676 exit 1
7777 fi
7878 echo "All actions are SHA-pinned"
You can’t perform that action at this time.
0 commit comments